Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

SUSE: 2018:0040-1 Important Kernel Security Update with Critical Fixes

suse
Calendar Grey January 8, 2018
Dist Suse Esm H88
Important notice regarding the SUSE Linux Kernel addressing multiple security flaws to improve overall system protection. Prompt measures recommended.
An update that solves 32 vulnerabilities and has 7 fixes is now available.

Summary

The SUSE Linux Enterprise 11 SP3 LTSS kernel was updated to receive various security and bugfixes. This update adds mitigations for various side channel attacks against modern CPUs that could disclose content of otherwise unreadable memory (bnc#1068032). - CVE-2017-5753: Local attackers on systems with modern CPUs featuring deep instruction pipelining could use attacker controllable speculative execution over code patterns in the Linux Kernel to leak content from otherwise not readable memory in the same address space, allowing retrieval of passwords, cryptographic keys and other secrets. This problem is mitigated by adding speculative fencing on affected code paths throughout the Linux kernel. - CVE-2017-5715: Local attackers on systems with modern CPUs featuring

References

#1010175 #1034862 #1045327 #1050231 #1052593

#1056982 #1057179 #1057389 #1058524 #1062520

#1063544 #1063667 #1066295 #1066472 #1066569

#1066573 #1066606 #1066618 #1066625 #1066650

#1066671 #1066693 #1066700 #1066705 #1067085

#1068032 #1068671 #1069702 #1069708 #1070771

#1071074 #1071470 #1071695 #1072561 #1072876

#1073792 #1073874 #1074033 #999245

Cross- CVE-2017-1000251 CVE-2017-11600 CVE-2017-13080

CVE-2017-13167 CVE-2017-14106 CVE-2017-14140

CVE-2017-14340 CVE-2017-15102 CVE-2017-15115

CVE-2017-15265 CVE-2017-15274 CVE-2017-15868

CVE-2017-16525 CVE-2017-16527 CVE-2017-16529

CVE-2017-16531 CVE-2017-16534 CVE-2017-16535

CVE-2017-16536 CVE-2017-16537 CVE-2017-16538

CVE-2017-16649 CVE-2017-16939 CVE-2017-...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2018:0040-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here